Security Engineer

GK HR Consulting India Private Limited·Bartlesville, Oklahoma·Posted 21h ago·via Talent.com

RegionUSA
Apply Now

Job description

Offensive Security & Advanced Testing Lead

Job Title: Senior Offensive Security & Advanced Testing Specialist

Experience: 10-12 Years

Location: Flexible / Hybrid

Role Overview

We are looking for an experienced Offensive Security professional to lead advanced security assessments, adversary emulation exercises, red team operations, AI security testing, and purple team engagements. The role will help validate organizational resilience against modern cyber threats across IT, Cloud, OT/IoT, and emerging AI systems.

Key Responsibilities

Red Team Operations

  • Plan and execute sophisticated red team engagements.
  • Simulate real-world adversary campaigns and attack chains.
  • Assess effectiveness of defensive controls, monitoring, and response capabilities.
  • Develop attack scenarios aligned with industry threat actors.

Offensive Security Testing

  • Conduct penetration testing of applications, networks, cloud platforms, APIs, and infrastructure.
  • Perform vulnerability assessments and exploit validation.
  • Assess identity, access management, and cloud security configurations.
  • Generate actionable security remediation recommendations.

Threat Emulation

  • Design and execute threat emulation exercises based on threat intelligence.
  • Map activities to MITRE ATT&CK and adversary TTPs.
  • Validate security controls against advanced persistent threat (APT) behaviors.
  • Measure organizational detection and response effectiveness.

AI Security Testing

  • Perform security assessments of AI/ML systems and GenAI applications.
  • Evaluate LLM security risks including prompt injection, jailbreaks, model manipulation, data leakage, and agent abuse.
  • Conduct adversarial AI testing and model robustness assessments.
  • Develop AI security validation methodologies and testing frameworks.

Purple Team Engagements

  • Collaborate with SOC, Detection Engineering, and Incident Response teams.
  • Validate detection use cases through controlled attack simulations.
  • Improve threat visibility, response effectiveness, and detection coverage.
  • Provide guidance for security control optimization.

Required Skills

  • Advanced penetration testing and exploit development.
  • Red Team and adversary simulation expertise.
  • Threat emulation using MITRE ATT&CK framework.
  • Cloud security testing (Azure, AWS, GCP).
  • Application security and API testing.
  • AI/ML and GenAI security testing experience.
  • Adversary emulation tooling (Cobalt Strike, Mythic, Caldera, Atomic Red Team, etc.).
  • Security scripting and automation (Python, PowerShell, Bash).

Preferred Certifications

  • OSCP / OSEP
  • CRTO (Certified Red Team Operator)
  • OSCE3
  • GIAC GPEN / GXPN
  • CARTP / CARTE
  • CISSP
  • SANS SEC699 (AI Security)

1. Security Engineer (SIEM, Detection & Response Engineering)

Job Title: Senior Security Engineer - Detection & Response Engineering

Experience: 10-12 Years

Location: Flexible / Hybrid

Role Overview

We are seeking an experienced Security Engineer to design, implement, and continuously enhance enterprise security monitoring, detection, response, and automation capabilities. The role focuses on building scalable SIEM and SOAR platforms, developing advanced detection content, integrating security telemetry across IT/OT/Cloud environments, and enabling automated security operations through secure DevSecOps practices.

Key Responsibilities

SIEM Engineering

  • Design, deploy, and optimize SIEM platforms and security monitoring architectures.
  • Onboard and normalize logs from enterprise, cloud, OT/IoT, and security technologies.
  • Develop use-case-driven dashboards, reports, and monitoring frameworks.
  • Improve log ingestion quality, data retention, and operational efficiency.

Detection Engineering

  • Develop and maintain threat detection use cases aligned with MITRE ATT&CK.
  • Build detection rules, correlation searches, behavioral analytics, and threat indicators.
  • Continuously tune detections to reduce false positives and improve coverage.
  • Validate and measure detection effectiveness through adversary simulations.

Response Engineering & SOAR

  • Design and implement automated response workflows and playbooks.
  • Integrate SIEM, SOAR, EDR, IAM, Ticketing, and Threat Intelligence platforms.
  • Develop automated containment, enrichment, investigation, and remediation actions.
  • Improve incident response processes through orchestration and automation.

Threat Hunting

  • Lead proactive threat hunting activities across enterprise environments.
  • Analyze attacker tactics, techniques, and procedures (TTPs).
  • Develop hypotheses-based hunting methodologies.
  • Identify advanced threats, insider risks, and suspicious behaviors.

Security Telemetry Integration

  • Integrate logs and telemetry from cloud, endpoint, network, identity, OT/IoT, and SaaS platforms.
  • Establish security data pipelines and event normalization standards.
  • Ensure complete visibility across hybrid environments.

Secure CI/CD & DevSecOps

  • Integrate security controls within CI/CD pipelines.
  • Implement automated security testing and policy enforcement.
  • Enable Infrastructure-as-Code (IaC) security validation.
  • Support secure software delivery practices and DevSecOps initiatives.

Required Skills

  • Hands-on experience with SIEM platforms (Microsoft Sentinel, Splunk, QRadar, Elastic, LogRhythm, etc.)
  • SOAR implementation and automation expertise.
  • Threat detection engineering and MITRE ATT&CK mapping.
  • Threat hunting methodologies and incident response.
  • Security telemetry onboarding and data engineering concepts.
  • Scripting experience (Python, PowerShell, Bash).
  • Cloud security monitoring (Azure, AWS, GCP).
  • DevSecOps and CI/CD security integration.

Preferred Certifications

  • GIAC GCDA, GCIH, GCFA
  • Microsoft SC-200
  • Splunk Core Consultant/Architect
  • CISSP
  • Azure Security Engineer Associate

first seen 2026-10-08 17:30:01 · last verified 2026-10-09 13:30:01


pentestcareers.com // breach the job market

Security Engineer at GK HR Consulting India Private Limited | Pentest Careers